The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two high-risk vulnerabilities to its Known Exploited...
cybersecurity
A recent investigation by SpecterOps has uncovered a chain of critical vulnerabilities in OneLogin’s Active Directory (AD)...
A tool named PoCGen is revolutionizing how the security community generates Proof-of-Concept (PoC) exploits for vulnerabilities in...
A sudden and coordinated wave of exploit attempts targeting a critical vulnerability in Zyxel firewalls has been...
A newly uncovered campaign by threat actor GrayAlpha, which overlaps with the infamous FIN7 cybercrime syndicate, reveals...
Trend Micro has uncovered an active and sophisticated campaign exploiting a critical remote code execution (RCE) vulnerability...
Both the Apple App Store and Google Play Store are frequently found to host malicious applications, despite...
In a recent disclosure, InfoGuard Labs researcher Marc Bollhalder has detailed a critical unauthenticated remote command injection...
Five critical vulnerabilities—each scoring a CVSS of 9.8—have been disclosed in multiple models of Blink routers BL,...
Despite mounting international pressure, public exposures, and a barrage of sanctions, the Predator spyware continues to evolve...
A new Ransomware-as-a-Service (RaaS) threat has emerged in 2025 — and it’s not just encrypting your data....
An independent hardware security researcher Danilo Erazo has unveiled two critical-severity vulnerabilities—CVE-2025-6029 and CVE-2025-6030—affecting smart keyless entry...
In 2025, cybersecurity analysts witnessed the emergence of a sophisticated and highly evasive info-stealer known as Katz...
IBM has disclosed a high-severity vulnerability affecting its Backup, Recovery, and Media Services (BRMS) for IBM i...
Recently, eSentire’s Threat Response Unit (TRU) uncovered an alarming surge in campaigns leveraging a malware duo: HijackLoader...
In a deeply revealing investigation, Censys researchers have uncovered a web of malicious infrastructure revolving around a...
A study by Mordechai Guri of Ben-Gurion University unveils a chilling new vector for data exfiltration: smartwatches....
When Infoblox researchers set out to disrupt the notorious Traffic Distribution System (TDS) known as VexTrio, they...
In the latest expose from Check Point Research, Discord’s once-trusted invite system has been turned against its...
Researchers at NetSPI detailed a spoofing vulnerability (CVE-2025-26685) in Microsoft Defender for Identity (MDI). This flaw, while...
A newly disclosed security vulnerability in the Windows SMB client, tracked as CVE-2025-33073, has raised significant concerns...
Grafana Labs has released a round of security patches to address CVE-2025-3415, a medium-severity vulnerability (CVSS 4.3)...